2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-2240HIGH7.2Docker daemon in Brocade SANnav before SANnav 2.3.1b runs without auditing. The vulnerability could allow a remote authe...
CVE-2024-55904HIGH7.2IBM DevOps Deploy 8.0 through 8.0.1.4, 8.1 through 8.1.0.0 / IBM UrbanCode Deploy 7.0 through 7.0.5.25, 7.1 through 7.1....
CVE-2024-57378HIGH7.3Wazuh SIEM version 4.8.2 is affected by a broken access control vulnerability. This issue allows the unauthorized creati...
CVE-2024-11347HIGH7.3Integer Overflow or Wraparound vulnerability in Lexmark International CX, XC, CS, et. Al. (Postscript interpreter module...
CVE-2024-11346HIGH7.3: Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Lexmark International CX, XC, CS, et. A...
CVE-2024-11345HIGH7.3A heap-based memory vulnerability has been identified in the Postscript interpreter in various Lexmark devices. The vuln...
CVE-2024-11344HIGH7.3A type confusion vulnerability has been identified in the Postscript interpreter in various Lexmark devices. The vulnera...
CVE-2024-12013HIGH7.6A CWE-1392 “Use of Default Credentials” was discovered affecting the 130.8005 TCP/IP Gateway running firmware version 12...
CVE-2024-12011HIGH7.6A CWE-126 “Buffer Over-read” was discovered affecting the 130.8005 TCP/IP Gateway running firmware version 12h. The info...
CVE-2024-13606HIGH7.5The JS Help Desk – The Ultimate Help Desk & Support Plugin plugin for WordPress is vulnerable to Sensitive Information E...
CVE-2024-46910HIGH7.1An authenticated user can perform XSS and potentially impersonate another user. This issue affects Apache Atlas version...
CVE-2024-7102HIGH7.5An issue was discovered in GitLab CE/EE affecting all versions starting from 16.4 prior to 17.5.0 which allows an attack...
CVE-2024-51376HIGH7.5Directory Traversal vulnerability in yeqifu carRental v.1.0 allows a remote attacker to obtain sensitive information via...
CVE-2024-34520HIGH8.8An authorization bypass vulnerability exists in the Mavenir SCE Application Provisioning Portal, version PORTAL-LBS-R_1_...
CVE-2024-56940HIGH7.5An issue in the profile image upload function of LearnDash v6.7.1 allows attackers to cause a Denial of Service (DoS) vi...
CVE-2024-51440HIGH7.8An issue in Nothing Tech Nothing OS v.2.6 allows a local attacker to escalate privileges via the NtBpfService component.
CVE-2024-51123HIGH7.5An issue in Zertificon Z1 SecureMail Z1 SecureMail Gateway 4.44.2-7240-debian12 allows a remote attacker to obtain sensi...
CVE-2024-46923HIGH7.5An issue was discovered in Samsung Mobile Processor Exynos 2200, 1480, and 2400. The absence of a null check leads to a ...
CVE-2024-46922HIGH7.5An issue was discovered in Samsung Mobile Processor Exynos 1480 and 2400. The absence of a null check leads to a Denial ...
CVE-2024-41917HIGH7.5Time-of-check time-of-use race condition for some Intel(R) Battery Life Diagnostic Tool software before version 2.4.1 ma...
CVE-2024-41168HIGH7.4Use after free in some Intel(R) PROSet/Wireless WiFi and Killerâ„¢ WiFi software for Windows before version 23.80 may al...
CVE-2024-39805HIGH7.8Insufficient verification of data authenticity in some Intel(R) DSA software before version 23.4.39 may allow an authent...
CVE-2024-39356HIGH7.4NULL pointer dereference in some Intel(R) PROSet/Wireless WiFi and Killerâ„¢ WiFi software for Windows before version 23...
CVE-2024-38310HIGH8.2Improper access control in some Intel(R) Graphics Driver software installers may allow an authenticated user to potentia...
CVE-2024-38307HIGH7.7Improper input validation in the firmware for some Intel(R) AMT and Intel(R) Standard Manageability may allow an authent...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now